Hi, is anyone have experience on setting up vpn for this use case? I need some guide on how to set up correctly as I am currently facing issue where the radius server response with reason code = 3 (access-reject). This issue only happens when using version 2 and not version 1 (aggresive mode + XAuth). Thanks in advance!
Hello.
FortiGate dial-up IPsec tunnels can be configured as IKEv2 with Radius authentication. Note that EAP will need to be configured even if LDAP is used, as IKEv2 requires EAP. LDAP will be a result of a 'translation' from RADIUS EAP to LDAP if that is possible.
please refer the below document :
=======================
debug commands :
===================
diag debug reset
diag debug enable
diag debug application ike -1
diag debug application fnbamd -1
-Naveen
User | Count |
---|---|
2593 | |
1382 | |
800 | |
659 | |
455 |
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.